top of page
perceptive_background_267k.jpg

A Business Logic vulnerability exists in SourceCodester Pharmacy Product Management System 1.0 in the add-sales.php file. The application fails to verify if the…

Published:

26 maart 2026 om 23:00:00

Alert date:

27 maart 2026 om 21:04:38

Source:

nvd.nist.gov

Click to open the original link from this advisory

Web Technologies

A business logic vulnerability in SourceCodester Pharmacy Product Management System 1.0 allows attackers to manipulate sales requests to purchase quantities exceeding available stock. The vulnerability exists in the add-sales.php file where the application fails to verify if the requested sales quantity (txtqty) exceeds available inventory levels. This oversight enables attackers to exploit the system by submitting purchase requests for significantly higher quantities than what is actually in stock, potentially leading to inventory discrepancies and business logic bypass.

Technical details

Mitigation steps:

Affected products:

SourceCodester Pharmacy Product Management System

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page